zeek / bro-scripts
Misc. Bro scripts
☆64Updated 7 years ago
Alternatives and similar repositories for bro-scripts
Users that are interested in bro-scripts are comparing it to the libraries listed below
Sorting:
- Bro scripts to be shared with the community☆109Updated 12 years ago
- Various Bro scripts☆96Updated 8 years ago
- ☆71Updated 3 years ago
- Bro-IDS scripts☆50Updated 8 years ago
- ☆85Updated 11 years ago
- (OBSOLETE) Plugins for Bro☆53Updated 7 years ago
- Analysis scripts for the Bro Intrusion Detection System☆58Updated 11 years ago
- This is a script module for Bro that encapsulates and detects activity related to the Mandiant APT1 report.☆47Updated 11 years ago
- Extract files from network traffic with Zeek.☆101Updated 5 years ago
- A collection of Bro scripts I've written☆40Updated 9 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 11 years ago
- Bro scripts written by CrowdStrike Services☆146Updated 4 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Dockerfiles for NSM tools☆84Updated 8 years ago
- Improvements of/over the original rule2alert☆56Updated 10 years ago
- Contributed Bro Scripts☆30Updated 10 years ago
- ☆75Updated 3 years ago
- Zeek Junk Drawer - Just some scripts and a place to put them☆27Updated 4 years ago
- QRadio ~ Best Threat Intelligence Radio ~ Tune In!☆96Updated 8 years ago
- vagrant multi-machine: Moloch, Bro,Suricata,ElasticSearch,Kibana☆41Updated 10 years ago
- Bro Snippets☆21Updated 10 years ago
- Scripts for Bro IDS and ELK Stack☆57Updated 9 years ago
- Zeek scripting language highlighting/support for Sublime Text☆19Updated 3 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆97Updated 10 years ago
- Script for generating Bro intel files from pdf or html reports☆77Updated 9 years ago
- TIH is an intelligence tool that helps you in searching for IOCs across multiple openly available security feeds and some well known APIs…☆150Updated 11 months ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- Meeting notes☆15Updated 9 years ago
- YALIH (Yet Another Low Interaction Honeyclient) is a low Interaction Client honeypot designed to detect malicious websites through signat…☆68Updated 5 years ago
- A package manager for Zeek☆46Updated 2 weeks ago